CVE-2024-1062
5.5
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Exploitability: 1.8 / Impact: 3.6
Source: secalert@redhat.com (Secondary)
Description
A heap overflow flaw was found in 389-ds-base. This issue leads to a denial of service when writing a value larger than 256 chars in log_entry_attr.
Affected (28)
Products: Redhat: 389 Directory Server, Directory Server, Enterprise Linux, Enterprise Linux Eus, Enterprise Linux For Arm 64 Eus, Enterprise Linux For Ibm Z Systems, Enterprise Linux For Ibm Z Systems Eus, Enterprise Linux For Power Little Endian Eus, Enterprise Linux Server Aus, Enterprise Linux Server For Power Little Endian Update Services For Sap Solutions, Enterprise Linux Server Tus, Enterprise Linux Update Services For Sap Solutions · Fedoraproject: Fedora
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Before 2.2.0 |
Configuration B
| Vulnerable Software | Affected Versions |
|---|---|
| All versions |
Configuration C
| Vulnerable Software | Affected Versions |
|---|---|
| Version 39 |
Configuration D
| Vulnerable Software | Affected Versions |
|---|---|
| Version 12.0 |
Configuration E
| Vulnerable Software | Affected Versions |
|---|---|
| Version 8.0 | |
| Version 8.6 | |
| Version 8.6 | |
| Version 9.2 | |
| Version 8.8 | |
| Version 8.8 | |
| Version 8.6 | |
| Version 8.6 | |
| Version 8.6 | |
| Version 8.6 |
References (19)
Source: secalert@redhat.com
Source: secalert@redhat.com
Issue TrackingVendor Advisory
Source: secalert@redhat.com
Issue TrackingVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Issue TrackingVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Issue TrackingVendor Advisory
Timeline
No history available yet.